I have two problems with S/MIME.
1. It's being pushed by RSA. If you agree with me that RSA is a
mouthpiece for NSA, then you can understand my problem with it.
Gack !!! Uh, congratulations, you broke the code. Send me your address and
I'll send you the consolation prize, a coveted "Sink Clipper" T-shirt.
2. Probably a trailer to number 1, but the symmetric key system used is
DES, crackable by gov and determined crackers with the right equipment.
Oops, it's even worse than that. S/MIME requires RC2 at 40 bits. This is
due to the unfortunate situation that we (the US Government) require
developers to incorporate "crackable" crypto in order to sell products
overseas.
Steve Dusse
Double Agent
RSA